[DNSOP] Re: [TLS] Re: Re: Re: AD review draft-ietf-tls-svcb-ech

"Salz, Rich" <rsalz@akamai.com> Fri, 04 October 2024 18:39 UTC

Return-Path: <rsalz@akamai.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D59F5C14F603; Fri, 4 Oct 2024 11:39:14 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.253
X-Spam-Level:
X-Spam-Status: No, score=-2.253 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.148, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=akamai.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dK50tRHzWk5k; Fri, 4 Oct 2024 11:39:11 -0700 (PDT)
Received: from mx0a-00190b01.pphosted.com (mx0a-00190b01.pphosted.com [IPv6:2620:100:9001:583::1]) by ietfa.amsl.com (Postfix) with ESMTP id 3EE88C14F5E6; Fri, 4 Oct 2024 11:39:11 -0700 (PDT)
Received: from pps.filterd (m0122333.ppops.net [127.0.0.1]) by mx0a-00190b01.pphosted.com (8.18.1.2/8.18.1.2) with ESMTP id 4945d0bj025099; Fri, 4 Oct 2024 19:39:08 +0100
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=akamai.com; h=cc :content-type:date:from:in-reply-to:message-id:mime-version :references:subject:to; s=jan2016.eng; bh=XLQaJNbxr8nkQYly4bqR9s 9iR0jTtSGq+gBW2px3fGM=; b=cnaezw7cB5MoWGtq2KHf2RBZjiFp/RCAUoPf/Y SgzFODFpO40DtiAHDxlzdxD334b3XhEpwFWMP1CALg9NK5k3HrlRzjLgkzX7bQjx bg2uSQJS5xtPKKk6bLqkdt6gDa0YOqgRMMzxHzFQWOBxGGk8J/jOSyAxT7gSWxHd o/i/1h5YZMTl4EYZQao/PiCoYED3fHM4Sf07eBxp+VV7hVyrRFhhRgwPysoCo51l F27QLkZVTK9KMNvJV2BNhFU3SDwV7jvJCmKN+GreaIhQvq6eCVvv9N2T/dGo+3nE NEm0Zcy2FF+Q9eQ5yskSkeQzdrhkHt4GnAt1oL5Vn+43Mu5A==
Received: from prod-mail-ppoint1 (prod-mail-ppoint1.akamai.com [184.51.33.18] (may be forged)) by mx0a-00190b01.pphosted.com (PPS) with ESMTPS id 42230junbp-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Fri, 04 Oct 2024 19:39:07 +0100 (BST)
Received: from pps.filterd (prod-mail-ppoint1.akamai.com [127.0.0.1]) by prod-mail-ppoint1.akamai.com (8.18.1.2/8.18.1.2) with ESMTP id 494F5R9P027338; Fri, 4 Oct 2024 14:39:06 -0400
Received: from email.msg.corp.akamai.com ([172.27.50.200]) by prod-mail-ppoint1.akamai.com (PPS) with ESMTPS id 42206rm21h-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Fri, 04 Oct 2024 14:39:06 -0400
Received: from ustx2ex-dag4mb4.msg.corp.akamai.com (172.27.50.203) by ustx2ex-dag4mb1.msg.corp.akamai.com (172.27.50.200) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.1544.11; Fri, 4 Oct 2024 13:39:05 -0500
Received: from ustx2ex-dag4mb4.msg.corp.akamai.com ([172.27.50.203]) by ustx2ex-dag4mb4.msg.corp.akamai.com ([172.27.50.203]) with mapi id 15.02.1544.011; Fri, 4 Oct 2024 11:39:05 -0700
From: "Salz, Rich" <rsalz@akamai.com>
To: Eric Rescorla <ekr@rtfm.com>, Paul Wouters <paul.wouters@aiven.io>
Thread-Topic: [DNSOP] Re: [TLS] Re: Re: Re: AD review draft-ietf-tls-svcb-ech
Thread-Index: AQHbFlYZWO0opJcCzk+DlGBjro/IyrJ3Ff2AgABJmICAAACVAP//vtQA
Date: Fri, 04 Oct 2024 18:39:05 +0000
Message-ID: <0CDA0AEF-B91E-46A0-A74F-22DD36D21414@akamai.com>
References: <CAGL5yWbDFjqxX9JhD6jL=iktamprOWSWjjzGVO1iMTYuADCe0A@mail.gmail.com> <CABcZeBO-d1JdBBoChomponbkqAA=x1YQyMLxmpAZnXmX___MqA@mail.gmail.com> <PH0PR15MB4381A7D9689244A565489331B3762@PH0PR15MB4381.namprd15.prod.outlook.com> <CAFR824y6G6mfWQ4iKMwJoZV7X7oE_xjw-KaLAp4bVaPfi38fBw@mail.gmail.com> <11c797bf-993e-037f-7b9f-6a64947aed75@redbarn.org> <BADE6224-0B10-426F-A381-28D2ED1014FE@broadcom.com> <MW4PR15MB4379D7A2BCD8DDA2D024107BB3702@MW4PR15MB4379.namprd15.prod.outlook.com> <2F26A523-D6D8-44E9-B54D-9C9C7CDD6722@broadcom.com> <65C0B64D-052F-4E58-B462-7C0C4D56DCFF@akamai.com> <CABcZeBPL6FGgRPYg1O_ca_QZ0_obEVRhFZOC-zJy2_4wz6cWeQ@mail.gmail.com> <PH0PR15MB438160E625A016AD9AB898A4B3722@PH0PR15MB4381.namprd15.prod.outlook.com> <CAGL5yWbaW8CaDwpCDNTGdum=zHpZn=MPfygHUWKC0vwqDdxoLA@mail.gmail.com> <CABcZeBM9dCVsbrCNR62K6ZQ+fb3d-En4fqrZYxxn-tzS49vF5w@mail.gmail.com>
In-Reply-To: <CABcZeBM9dCVsbrCNR62K6ZQ+fb3d-En4fqrZYxxn-tzS49vF5w@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.89.24091630
x-originating-ip: [172.27.118.139]
Content-Type: multipart/alternative; boundary="_000_0CDA0AEFB91E46A0A74F22DD36D21414akamaicom_"
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.293,Aquarius:18.0.1051,Hydra:6.0.680,FMLib:17.12.62.30 definitions=2024-10-04_16,2024-10-04_01,2024-09-30_01
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 malwarescore=0 adultscore=0 bulkscore=0 mlxscore=0 phishscore=0 spamscore=0 mlxlogscore=589 suspectscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2409260000 definitions=main-2410040128
X-Proofpoint-ORIG-GUID: r6yMW3nN6TsAzO7bBPYRgMjj6NQzjmL2
X-Proofpoint-GUID: r6yMW3nN6TsAzO7bBPYRgMjj6NQzjmL2
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.293,Aquarius:18.0.1039,Hydra:6.0.680,FMLib:17.12.60.29 definitions=2024-09-06_09,2024-09-06_01,2024-09-02_01
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 priorityscore=1501 suspectscore=0 impostorscore=0 bulkscore=0 adultscore=0 spamscore=0 mlxscore=0 mlxlogscore=421 clxscore=1015 malwarescore=0 phishscore=0 lowpriorityscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.19.0-2409260000 definitions=main-2410040128
Message-ID-Hash: 6UKEFVKM7AAUHA2FRDPV6FX3JXDH5BZ7
X-Message-ID-Hash: 6UKEFVKM7AAUHA2FRDPV6FX3JXDH5BZ7
X-MailFrom: rsalz@akamai.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-dnsop.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: Ben Schwartz <bemasc@meta.com>, Arnaud Taddei <arnaud.taddei@broadcom.com>, Paul Vixie <paul@redbarn.org>, "draft-ietf-tls-svcb-ech.authors@ietf.org" <draft-ietf-tls-svcb-ech.authors@ietf.org>, "TLS@ietf.org" <tls@ietf.org>, "dnsop@ietf.org WG" <dnsop@ietf.org>
X-Mailman-Version: 3.3.9rc5
Precedence: list
Subject: [DNSOP] Re: [TLS] Re: Re: Re: AD review draft-ietf-tls-svcb-ech
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/V5M-21ZnCWLG5BswT_VH-goSh-8>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Owner: <mailto:dnsop-owner@ietf.org>
List-Post: <mailto:dnsop@ietf.org>
List-Subscribe: <mailto:dnsop-join@ietf.org>
List-Unsubscribe: <mailto:dnsop-leave@ietf.org>

  *   I would not be in favor of this. This is been intensely controversial and I want the document done

I agree.  The PR acknowledges the issue and that’s enough in my view. Any additional work on how to deploy something in DNS will require close coordination with the DNS folks and add an interminable delay.